Vulnerabilities > Uncontrolled Resource Consumption ('Resource Exhaustion')

DATE CVE VULNERABILITY TITLE RISK
2023-08-22 CVE-2022-48063 Resource Exhaustion vulnerability in GNU Binutils
GNU Binutils before 2.40 was discovered to contain an excessive memory consumption vulnerability via the function load_separate_debug_files at dwarf2.c.
local
low complexity
gnu CWE-400
5.5
2023-08-22 CVE-2022-48564 Resource Exhaustion vulnerability in multiple products
read_ints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
network
low complexity
python netapp CWE-400
6.5
2023-08-22 CVE-2022-48571 Resource Exhaustion vulnerability in Memcached 1.6.7
memcached 1.6.7 allows a Denial of Service via multi-packet uploads in UDP.
network
low complexity
memcached CWE-400
7.5
2023-08-16 CVE-2023-38737 Resource Exhaustion vulnerability in IBM Websphere Application Server
IBM WebSphere Application Server Liberty 22.0.0.13 through 23.0.0.7 is vulnerable to a denial of service, caused by sending a specially-crafted request.
network
low complexity
ibm CWE-400
7.5
2023-08-14 CVE-2023-21280 Resource Exhaustion vulnerability in Google Android 12.0/12.1/13.0
In setMediaButtonBroadcastReceiver of MediaSessionRecord.java, there is a possible permanent DoS due to resource exhaustion.
local
low complexity
google CWE-400
5.5
2023-08-11 CVE-2021-29057 Resource Exhaustion vulnerability in Thoughtworks Node-Worker-Threads-Pool 1.4.3
An issue was discovered in StaticPool in SUCHMOKUO node-worker-threads-pool version 1.4.3, allows attackers to cause a denial of service.
network
low complexity
thoughtworks CWE-400
6.5
2023-08-11 CVE-2023-28938 Resource Exhaustion vulnerability in Mdadm Project Mdadm
Uncontrolled resource consumption in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a priviledged user to potentially enable denial of service via local access.
local
low complexity
mdadm-project CWE-400
4.4
2023-08-02 CVE-2023-29409 Resource Exhaustion vulnerability in Golang GO
Extremely large RSA keys in certificate chains can cause a client/server to expend significant CPU time verifying signatures.
network
low complexity
golang CWE-400
5.3
2023-07-25 CVE-2023-3637 Resource Exhaustion vulnerability in Redhat Openstack Platform 13.0/16.2
An uncontrolled resource consumption flaw was found in openstack-neutron.
network
low complexity
redhat CWE-400
6.5
2023-07-18 CVE-2023-37140 Resource Exhaustion vulnerability in Microsoft Chakracore
ChakraCore branch master cbb9b was discovered to contain a segmentation violation via the function Js::DiagScopeVariablesWalker::GetChildrenCount().
local
low complexity
microsoft CWE-400
5.5